Universal Ircd / Ircu
8 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2007-4411 | ircu 2.10.12.05 and earlier allows remote attackers to discover the hidden IP address of arbitrary +x users via a series of /silence commands with (1) CIDR mas… | MEDIUM | 4.3 | Aug 18, 2007 |
| CVE-2007-4410 | ircu 2.10.12.05 and earlier does not properly synchronize a kick action in certain cross scenarios, which allows remote authenticated operators to prevent late… | MEDIUM | 6.0 | Aug 18, 2007 |
| CVE-2007-4409 | Race condition in ircu 2.10.12.01 through 2.10.12.05 allows remote attackers to set a new Apass during a netburst by arranging for ops privilege to be granted… | MEDIUM | 5.1 | Aug 18, 2007 |
| CVE-2007-4408 | ircu 2.10.12.05 and earlier ignores timestamps in bounces, which allows remote attackers to take over a channel during a netjoin by causing a bounce while a se… | MEDIUM | 5.0 | Aug 18, 2007 |
| CVE-2007-4407 | ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which allows remote attackers to (1) set or rem… | MEDIUM | 6.4 | Aug 18, 2007 |
| CVE-2007-4406 | ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after a join from a server with an older timestamp (TS), which allows remote attackers to gain… | HIGH | 7.5 | Aug 18, 2007 |
| CVE-2007-4405 | ircu 2.10.12.02 through 2.10.12.04 allows remote attackers to cause a denial of service (memory and bandwidth consumption) by creating a large number of unused… | HIGH | 7.8 | Aug 18, 2007 |
| CVE-2007-4404 | ircu 2.10.12.01 allows remote attackers to (1) cause a denial of service (flood wallops) by joining two channels with certain long names that differ in the fin… | HIGH | 7.8 | Aug 18, 2007 |
Showing 1 to 8 of 8 CVEs